5.5

CVE-2024-41060

drm/radeon: check bo_va->bo is non-NULL before using it

In the Linux kernel, the following vulnerability has been resolved:

drm/radeon: check bo_va->bo is non-NULL before using it

The call to radeon_vm_clear_freed might clear bo_va->bo, so
we have to check it before dereferencing it.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Linux ≫ Linux Kernel Version < 5.15.164
Linux ≫ Linux Kernel Version >= 5.16 < 6.1.101
Linux ≫ Linux Kernel Version >= 6.2 < 6.6.42
Linux ≫ Linux Kernel Version >= 6.7 < 6.9.11
Linux ≫ Linux Kernel Version 6.10 Update rc1
Linux ≫ Linux Kernel Version 6.10 Update rc2
Linux ≫ Linux Kernel Version 6.10 Update rc3
Linux ≫ Linux Kernel Version 6.10 Update rc4
Linux ≫ Linux Kernel Version 6.10 Update rc5
Linux ≫ Linux Kernel Version 6.10 Update rc6
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.25% 0.162
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
416baaa9-dc9f-4396-8d5f-8c081fb06d67 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE-476 NULL Pointer Dereference

The product dereferences a pointer that it expects to be valid but is NULL.

https://git.kernel.org/stable/c/6fb15dcbcf4f212930350eaee174bb60ed40a536
Patch
https://git.kernel.org/stable/c/8a500b3a5f0a58c6f99039091fbd715f64f2f8af
Patch
https://git.kernel.org/stable/c/a2b201f83971df03c8e81a480b2f2846ae8ce1a3
Patch
https://git.kernel.org/stable/c/a9100f17428cb733c4f6fbb132d98bed76318342
Patch
https://git.kernel.org/stable/c/e8d3c53c6f1cccea9c03113f06dd39521c228831
https://git.kernel.org/stable/c/f13c96e0e325a057c03f8a47734adb360e112efe
Patch
https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html
https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html